pkg:Go/goauthentik.io
11 total CVEsHIGH3MEDIUM6
✅ Check your installed version
All known vulnerabilities
- >= 2024.6.0-rc1, < 2024.6.4
- from 0
- HIGH8.5CVE-2026-47201authentik's XML Signature Wrapping in SAML Source ACS allows authentication as arbitrary federated userfrom 0, < 0.0.0-20260528144335-a370d76d23c7
- from 0
- >= 2023.10.0, < 2023.10.7
- from 0
- from 0, < 0.0.0-20251119135424-6672e6aaa41e
- from 0, < 0.0.0-20251119140106-9dbdfc3f1be0
- from 0
- —CVE-2025-53942authentik has an insufficient check for account active status during OAuth/SAML authenticationfrom 0, < 0.0.0-20250722122105-7a4c6b9b50f8
- —CVE-2025-53942authentik has an insufficient check for account active status during OAuth/SAML authenticationfrom 0